Trusted Design

China Hacks the Peace Palace: All Your EEZ’s Are Belong to Us

概要

In early July 2015, Chinese APT actors used an Adobe Flash Player exploit within a specific webpage detailing a noteworthy international legal case between the Philippines and China. This precedent setting legal case would be followed by many Southeast Asian nations, as well as others around the globe. The exploit appeared on day three of the Permanent Court of Arbitration tribunal, exposing an untold number of interested parties that visited the webpage to potential exploitation. When considered holistically, the intelligence supports the conclusion that this exploitation campaign was purposefully carried out against the backdrop of diplomatic and legal maneuvering. Despite Beijing’s unwillingness to participate in the international arbitration and their rejection of the PCA’s jurisdiction, there appears to be a distinct effort to surreptitiously target those who are interested in this landmark international legal case via electronic means.

Created: 2026-02-23

Indicators

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

Turla

Score: 5.68
Matched TTPs:
  • T1131 - Authentication Package
  • T1547.002 - Authentication Package
MITREへのリンク →

SilverTerrier

Score: 3.29
Matched TTPs:
  • T1131 - Authentication Package
MITREへのリンク →

APT32

Score: 3.29
Matched TTPs:
  • T1131 - Authentication Package
MITREへのリンク →

APT28

Score: 8.43
Matched TTPs:
  • T1131 - Authentication Package
  • T1059.001 - PowerShell
  • T1547.002 - Authentication Package
MITREへのリンク →

Kimsuky

Score: 15.58
Matched TTPs:
  • T1131 - Authentication Package
  • T1547.002 - Authentication Package
  • T1565.002 - Transmitted Data Manipulation
  • T1665 - Hide Infrastructure
  • T1003.003 - NTDS
MITREへのリンク →

Contagious Interview

Score: 8.74
Matched TTPs:
  • T1131 - Authentication Package
  • T1565.002 - Transmitted Data Manipulation
  • T1547.008 - LSASS Driver
MITREへのリンク →

PROMETHIUM

Score: 4.13
Matched TTPs:
  • T1547.015 - Login Items
MITREへのリンク →

UNC3886

Score: 4.13
Matched TTPs:
  • T1547.015 - Login Items
MITREへのリンク →

Ember Bear

Score: 6.88
Matched TTPs:
  • T1059.001 - PowerShell
  • T1003.003 - NTDS
MITREへのリンク →

Dragonfly

Score: 5.67
Matched TTPs:
  • T1059.001 - PowerShell
  • T1573 - Encrypted Channel
MITREへのリンク →

MuddyWater

Score: 5.14
Matched TTPs:
  • T1059.001 - PowerShell
  • T1547.002 - Authentication Package
MITREへのリンク →

Threat Group-3390

Score: 5.67
Matched TTPs:
  • T1059.001 - PowerShell
  • T1573 - Encrypted Channel
MITREへのリンク →

FIN7

Score: 8.07
Matched TTPs:
  • T1059.001 - PowerShell
  • T1573 - Encrypted Channel
  • T1547.002 - Authentication Package
MITREへのリンク →

Sandworm Team

Score: 5.33
Matched TTPs:
  • T1573 - Encrypted Channel
  • T1547.002 - Authentication Package
MITREへのリンク →

Moonstone Sleet

Score: 5.45
Matched TTPs:
  • T1573 - Encrypted Channel
  • T1547.008 - LSASS Driver
MITREへのリンク →

Lazarus Group

Score: 11.89
Matched TTPs:
  • T1547.002 - Authentication Package
  • T1055.005 - Thread Local Storage
  • T1665 - Hide Infrastructure
  • T1547.008 - LSASS Driver
MITREへのリンク →

Magic Hound

Score: 4.92
Matched TTPs:
  • T1547.002 - Authentication Package
  • T1547.008 - LSASS Driver
MITREへのリンク →

OilRig

Score: 7.06
Matched TTPs:
  • T1592.002 - Software
  • T1547.008 - LSASS Driver
MITREへのリンク →

LAPSUS$

Score: 4.13
Matched TTPs:
  • T1557.002 - ARP Cache Poisoning
MITREへのリンク →

Scattered Spider

Score: 11.60
Matched TTPs:
  • T1557.002 - ARP Cache Poisoning
  • T1565.002 - Transmitted Data Manipulation
  • T1027.002 - Software Packing
MITREへのリンク →

Storm-1811

Score: 5.45
Matched TTPs:
  • T1565.002 - Transmitted Data Manipulation
  • T1547.008 - LSASS Driver
MITREへのリンク →

Mustang Panda

Score: 7.06
Matched TTPs:
  • T1565.002 - Transmitted Data Manipulation
  • T1055.005 - Thread Local Storage
MITREへのリンク →

APT38

Score: 4.54
Matched TTPs:
  • T1059.005 - Visual Basic
MITREへのリンク →

Axiom

Score: 4.54
Matched TTPs:
  • T1160 - Launch Daemon
MITREへのリンク →

ToddyCat

Score: 5.36
Matched TTPs:
  • T1665 - Hide Infrastructure
  • T1547.008 - LSASS Driver
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

Kimsuky

Score: 0.81
Matched TTPs:
  • T1547.002 - Authentication Package
  • T1565.002 - Transmitted Data Manipulation
  • T1003.003 - NTDS
  • T1131 - Authentication Package
  • T1665 - Hide Infrastructure
MITREへのリンク →

Lazarus Group

Score: 0.65
Matched TTPs:
  • T1055.005 - Thread Local Storage
  • T1665 - Hide Infrastructure
  • T1547.008 - LSASS Driver
  • T1547.002 - Authentication Package
MITREへのリンク →

Scattered Spider

Score: 0.63
Matched TTPs:
  • T1027.002 - Software Packing
  • T1565.002 - Transmitted Data Manipulation
  • T1557.002 - ARP Cache Poisoning
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る